Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - nicholaswkc

#1
Quote from: alex_62450 on March 27, 2025, 11:45:42 AMHi @nicholaswkc,

The same happens on OPNsense 25.1 in my home lab : there are 2 interfaces in addition to WAN, ie. LAN and let's say OPT1. The issue also occurs without any change in configuration on OPNsense, and I could identify something : DHCP works fine if I plug the LAN endpoint on the OPT1 interface, but the connection fails when it is connected to the LAN interface itself. It appears therefore that the connectivity loss on LAN could be linked to DHCP specifically on LAN.

Yes, I do have DHCP enable on LAN.Apart from this, my OPT1 seems reset and going down and not reactivate again. It need to replug the cable in order to have full functional internet.

Please help. Thanks in advance.


Is DHCP activated on your LAN interface too? 
#2
Dear all users, yesterday my firewall has some odd issues where my LAN not able to ping opnsense box(ping 192.168.1.1 and dig www.google.com). Today, the issue back to normal. This issue is very strange as i not touch anything that may possible break the setup.

#3
Try check firewall logs first.
Second, will be unbound log.
#4
Nmap scanning need to perform from WAN as point out by Patrick.
#5
Glad to hear that.
#6
Hope this will resolve in 25.1.1.
#7
Can highlight this issue to dev @ FreeBSD?
#8
Show us your vpn configuration and firewall rules.
#9
24.7, 24.10 Legacy Series / Re: Squid: segmentation fault
February 12, 2025, 07:34:07 AM
Try reinstall.
#10
Can highlight this issue to dev @ FreeBSD?
#11
24.7, 24.10 Legacy Series / Network Stack Tuning
January 27, 2025, 06:36:08 AM
Dear all forumers, I had try to speedtest with opnsense router and the result shows signicant performance drops where i subscribe to 500Mbps internet speed. I get 210 mbps testing internet speed.

My opnsense box was running on desktop PC with 16GB Ram, Intel 7th gen 4 cores, Intel NIC (em0 and igb0). My firewall rules has one BLOCK_IN and the rest is default. No VPN
Any thing i can to do get upspeed?

FreeBSD

/etc.rc.conf
harvest_mask="351"

net.inet.ip.fastforwarding=1
net.inet.ip.redirect=0
net.inet.raw.maxdgram=16384
net.inet.raw.recvspace=16384

calomel Performance Tuning

I had did tuning according to these two source but it seems didn't help either.

#12
24.7, 24.10 Legacy Series / Re: Wireguard Setup Guide
January 25, 2025, 09:31:21 AM
Quote from: RamSense on January 25, 2025, 07:50:18 AMHi,
Maybe this detailed guide can help you:
https://homenetworkguy.com/how-to/configure-wireguard-opnsense/

The guide is more like setup P2P network to OPNSense firewall. I just need to import conf file in Wireguard app. I want to setup peer wireguard to Proton vpn
#13
If you want to process huge number of traffic.
#14
24.7, 24.10 Legacy Series / Wireguard Setup Guide
January 25, 2025, 06:52:35 AM
Dear all forumer, I tried to setup wireguard vpn by following the official wireguard guide but could not understand it.

In Windows, i just need to import the conf file into wireguard app.

Please bear with me as I am beginner in networking.
Please teach me how to setup in simple step by step.



#15
Quote from: CJ on November 28, 2023, 04:11:02 PM
Can you post the make and model of the device along with what exactly is being blocked?  A network diagram and your fw rules would be helpful as well.

The device is a TV Box which is SVI Cloud 3s. It's a HK based TV Box. My network diagram is Modem -> OPN Sense Router -> Switches/Access Point -> PC/TV Box

My firewall rules is Block Inbound All and default firewall rules. That's all. Nothing complicated.

I try to diagnose by looking Firewall - Diagnostics - States. I found nothing that block it. I have move the TV Box to different interface just to simplify the searching.

I try to disable Suricata but no helps also. I found out that there is a lot of malware alert trigger.